Solved

Finding spyware and hidden monitoring software

Posted on 2007-11-23
2
751 Views
Last Modified: 2013-11-18
We have a SBS 2003 that has very confidential information.

I did a McAfee Viruscan today and immediately received the Notification "The On-Demand Scan found alterations to code or data which may indicate that a rootkit is attempting to hide files, registry keys, processes or other items..."

It's the first time I've come across this and, although McAfee suggests a scan in safe mode, are there any good tools or ways using  McAfee Enterprise edition to determine if this is serious monitoring software and where it's coming from?

Thanks,

Mike
0
Comment
Question by:mikeabc27
2 Comments
 
LVL 2

Expert Comment

by:Dominik_L
ID: 20338845
There are many anti-rootkit utilities, but there is more probability that this is false alarm than it's really a rootkit.
You may try:
http://dobreprogramy.pl/index.php?dz=22&id=2181&t=55
http://dobreprogramy.pl/index.php?dz=22&id=1497&t=55

Try also online virus scanners like:
http://www.kaspersky.com/virusscanner
0
 
LVL 10

Accepted Solution

by:
yasserd earned 500 total points
ID: 20340792
0

Featured Post

U.S. Department of Agriculture and Acronis Access

With the new era of mobile computing, smartphones and tablets, wireless communications and cloud services, the USDA sought to take advantage of a mobilized workforce and the blurring lines between personal and corporate computing resources.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

One of the biggest threats in the cyber realm pertains to advanced persistent threats (APTs). This paper is a compare and contrast of Russian and Chinese APT's.
Each year, investment in cloud platforms grows more than 20% (https://www.immun.io/hubfs/Immunio_2016/Content/Marketing/Cloud-Security-Report-2016.pdf?submissionGuid=a8d80a00-6fee-4b85-81db-a4e28f681762) as an increasing number of companies begin to…
Sending a Secure fax is easy with eFax Corporate (http://www.enterprise.efax.com). First, just open a new email message. In the To field, type your recipient's fax number @efaxsend.com. You can even send a secure international fax — just include t…
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question